56
Views
5
Comments
[Root / Jailbreak Detection Plugin] Incorrect implementation of RootJailbreakPlugin?
Question
jailbreak-plugin
Mobile icon
Forge asset by Rui Barradas
Application Type
Mobile

Hi,


Our app is currently undergoing VAPT, and one of the concerns raised is the ability of jailbroken devices to run our app.


To mitigate this concern, we have implemented the RootJailbreakPlugin in several login flows as depicted in the attached screenshots.


However, this implementation has still failed to pass VAPT.


Could you please confirm if our implementation is correct? If not, what steps should we take to rectify this issue?


Thank you.


Screenshot 2024-03-12 144518a.png
2023-05-23 04-55-55
Wasimkhan Syed Abuthahir

Hi,

Can you try this Outsystems supported component. Hope this will be helpful.


Regards,

Wasimkhan S

2024-04-24 11-41-55
Matthias Preuter

@YS Yeo did you find a solution for this?

2020-05-07 18-53-00
Rui Barradas
 
MVP

Hello @YS Yeo and @Matthias Preuter ,

First of all, sorry for my late reply ^^

Secondly, yes your implementation is correct, the plugin should be really simple to implement and straight forward.

Please make sure that you generate new builds (IPA and APK/AAB files) after adding the plugin to your code.

What type of VAPT tests are your security team executing? Can you provide more details?


Kind regards,

Rui Barradas

2024-12-17 14-32-59
Matthias Preuter
 
MVP

Performed test: 

iPhone 7 15.8.3 is now Jailbroken, used instructions on http://ios.cfw.guide (Dopamine)

And after this action the Mobile app is still able to run

We have a slightly different implementation, this action is running in the OnInitialize of the layoutl and throws an exception when this action returns IsRooted.

Best regards, 

Matthias

2024-12-17 14-32-59
Matthias Preuter
 
MVP

Can somebody confirm that this component is not working for iOS?

Community GuidelinesBe kind and respectful, give credit to the original source of content, and search for duplicates before posting.